Humanity Protocol’s H token took a sharp hit after the decentralized identity project reported a private-key compromise, according to CoinDesk.

In a security incident statement covered by CoinDesk, Humanity Protocol said attackers compromised the keys of a foundation member. The alleged goal looks straightforward. The project says the attackers are dumping stolen H tokens for ether.

What the project alleges happened

CoinDesk reports that Humanity Protocol traced the issue to compromised credentials held by a foundation member, not to a public protocol exploit.

That detail matters. A private-key compromise typically points to access theft in a custodial or operational process. It also shapes what “fixed” means. You can patch code. You can rotate keys. You cannot undo a transfer that already happened on-chain.

Why the market moved fast

CoinDesk’s coverage ties the token crash to the stated sell behavior. If a large balance of H was seized and immediately exchanged into ETH, it can create rapid sell pressure.

CoinDesk reports the token is down more than 80% following the incident. In security terms, that aligns with a dump narrative. In trading terms, it means the market may have priced in both the theft risk and the near-term liquidity impact.

Attack path and likely next steps

From the facts CoinDesk provides, the attack path begins with compromised keys. The follow-on actions are conversion into ether, which suggests the stolen assets are being routed into liquidity venues.

For readers watching from the sidelines, the actionable part is what Humanity Protocol does next, and what it has not yet clarified. Key questions include whether the foundation member’s keys were rotated promptly, whether additional wallets or signers are affected, and whether the project can identify the exact addresses involved.

Confirmed versus not yet confirmed

CoinDesk’s report is careful in describing the alleged mechanics. Humanity Protocol “said” attackers compromised keys and are dumping stolen H tokens for ether. That is still an allegation until independent on-chain forensics confirms the flows.

Even so, the directional story fits the outcome CoinDesk reports. A private-key theft plus prompt conversion to ETH is the kind of sequence that can drive sudden, steep token drawdowns.

The open problem: scope

A single compromised foundation key could mean a limited loss. It could also be the start of a wider access breach if multiple operational accounts share tooling, permissions, or custody practices.

CoinDesk gives one core data point: a reported $32 million private-key hack and a token drop exceeding 80%. What’s still missing in the provided text is a breakdown of how much was stolen, where the keys lived, and whether the foundation has already identified the exfiltrated addresses.

Investors should treat H as a risk asset in the aftermath of a theft. Security incidents can change token supply dynamics quickly, but the recovery path depends on disclosure quality, remediation speed, and confirmed asset tracing.